CNNVD-202601-3885 Information

CNNVD ID

CNNVD-202601-3885

CVE-2026-1331

  • CNNVD Published: 2026-01-22

Description (Chinese)

HAMASTAR MeetingHub是中国台湾哈玛星(HAMASTAR)公司的一套无纸化会议系统。 HAMASTAR MeetingHub存在代码问题漏洞,该漏洞源于存在任意文件上传漏洞,可能导致未经验证的远程攻击者上传并执行Webshell后门,进而在服务器上执行任意代码。

Description (English)

HMASTAR MeeringHub is a paperless meeting system of the Chinese company Hamarstar. HMASTAR MeeringHub had a code gap, which stemmed from the existence of an arbitrary file upload loophole, which could lead to unverified remote assailants uploading and implementing the Webshell back door, thus enforcing any code on the server.

Hazard Level

Low

Vulnerability Type

代码问题

Affected Vendor

哈玛星

Published

2026-01-22

Last Modified

2026-02-24

References

https://www.twcert.org.tw/en/cp-139-10651-ff09c-2.html https://www.twcert.org.tw/tw/cp-132-10650-a5ee9-1.html

Patch

https://www.hamastar.com.tw/

Share on: